[jbosstools-issues] [JBoss JIRA] (JBIDE-26302) Reduce CVE issues in JBT seam bundles

Nick Boldt (JIRA) issues at jboss.org
Mon Sep 24 21:38:00 EDT 2018


     [ https://issues.jboss.org/browse/JBIDE-26302?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Nick Boldt reassigned JBIDE-26302:
----------------------------------

    Assignee: Jeff MAURY  (was: Nick Boldt)


> Reduce CVE issues in JBT seam bundles
> -------------------------------------
>
>                 Key: JBIDE-26302
>                 URL: https://issues.jboss.org/browse/JBIDE-26302
>             Project: Tools (JBoss Tools)
>          Issue Type: Bug
>          Components: central-update
>            Reporter: Nick Boldt
>            Assignee: Jeff MAURY
>             Fix For: 4.9.0.Final
>
>
> Some CVE issues exist in seam bundles:
> {code}
> org.jboss.tools.cdi.seam.core_1.8.301.v20180807-1920.jar
> org.jboss.tools.maven.seam_1.9.1.v20180802-1520.jar{code} -- https://dev-platform-jenkins.rhev-ci-vms.eng.rdu2.redhat.com/view/Devstudio/view/jbosstools-releng/job/devstudio.cve.report/lastBuild/dependency-check-jenkins-pluginResult/HIGH/package.218945078/
> Verification: check if we have fewer CVEs after updating to newer version of fuse 11.1.x:
> https://dev-platform-jenkins.rhev-ci-vms.eng.rdu2.redhat.com/view/Devstudio/view/jbosstools-releng/job/devstudio.cve.report/lastBuild/dependency-check-jenkins-pluginResult/HIGH/ vs. #103
> https://dev-platform-jenkins.rhev-ci-vms.eng.rdu2.redhat.com/view/Devstudio/view/jbosstools-releng/job/devstudio.cve.report-merged/lastBuild/dependency-check-jenkins-pluginResult/HIGH/ vs. build #87



--
This message was sent by Atlassian JIRA
(v7.5.0#75005)


More information about the jbosstools-issues mailing list